In Splunk Add-on Builder versions below 4.1.4, the application writes user session tokens to its internal log files when you visit the Splunk Add-on Builder or when you build or edit a custom app or add-on.
📦
add-on_builder
Vendor: splunk
Actively Exploited
0
CISA KEV List
PoC / Exploits
0
Code Available
Total RCEs
0
Remote Access
Total CVEs
3
Total Indexed
Avg. EPSS
0.39%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
6.8
CVSS
Severity: MEDIUM
8.2
CVSS
In Splunk Add-on Builder versions below 4.1.4, the app writes sensitive information to internal log files.
Severity: HIGH
4.8
CVSS
In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs.
Severity: MEDIUM